Spacewalk Project maintains a systems management platform designed for lifecycle management of Linux systems across enterprise environments. The observed vulnerability signal centers on the platform's code-generation and templating functionality, where improper control of code injection has surfaced as a durable weakness class. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Spacewalk Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-40348HIGH Spacewalk 2.10, and derivatives such as Uyuni 2021.08, allows code injection. rhn-config-satellite.pl doesn't sanitize the configuration filename used to append Spacewalk-specific | Nov 1, 2021 | 8.8 | 26 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Spacewalk Project.
Media articles that mention a CVE ID that affects a product developed by Spacewalk Project — matched by CVE ID, not by vendor name.